Lumension® Endpoint Intelligence Center

Intelligence Center » Browse All Vulnerabilities » CVE-2002-0710

Overview

Vulnerability Score 6.4 6.4
CVE Id CVE-2002-0710
Last Modified 10 Sep 2008 03:12:45
Published 12 Aug 2002 12:00:00
Confidentiality Impact PARTIAL PARTIAL
Integrity Impact PARTIAL PARTIAL
Availability Impact NONE NONE
Access Vector NETWORK
Access Complexity LOW
Authentication NONE

CVE-2002-0710

Summary

Directory traversal vulnerability in sendform.cgi 1.44 and earlier allows remote attackers to read arbitrary files by specifying the desired files in the BlurbFilePath parameter.

Vulnerable Systems

Application

  • Rod Clark Sendform.cgi 1.4

  • Rod Clark Sendform.cgi 1.4.1

  • Rod Clark Sendform.cgi 1.4.2

  • Rod Clark Sendform.cgi 1.4.3

  • Rod Clark Sendform.cgi 1.4.4


References

BUGTRAQ - 20020730 Directory traversal vulnerability in sendform.cgi

CONFIRM - http://www.scn.org/~bb615/scripts/sendform.html

BID - 5286

OSVDB - 3568

XF - sendform-blurbfile-directory-traversal(9725)


Last Updated: 27 May 2016 10:37:02